|
Message-ID: <546BE0C0.2050908@redhat.com> Date: Wed, 19 Nov 2014 11:13:52 +1100 From: Murray McAllister <mmcallis@...hat.com> To: oss-security@...ts.openwall.com CC: 767227@...s.debian.org Subject: CVE request: lsyncd command injection Good morning, There is a command injection flaw in lsyncd, a file change monitoring and synchronization daemon: https://github.com/axkibe/lsyncd/issues/220 https://github.com/creshal/lsyncd/commit/18f02ad013b41a72753912155ae2ba72f2a53e52 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=767227 Could a CVE please be assigned? Thanks, -- Murray McAllister / Red Hat Product Security
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.